A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been rated as critical. Affected by this issue is the function save_settings of the file admin/admin_class.php. The manipulation of the argument img leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-273626 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/DeepMountains/zzz/blob/main/CVE1-5.md | Exploit Third Party Advisory |
https://vuldb.com/?ctiid.273626 | Permissions Required Third Party Advisory VDB Entry |
https://vuldb.com/?id.273626 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.385896 | Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2024-08-06 04:16
Updated : 2024-09-11 20:07
NVD link : CVE-2024-7500
Mitre link : CVE-2024-7500
CVE.ORG link : CVE-2024-7500
JSON object : View
Products Affected
angeljudesuarez
- airline_reservation_system
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type